
Your Current Location On Map Security & Risk Analysis
wordpress.org/plugins/your-current-location-on-mapDisplays your current location in map with accuracy. Your Current Location On Map plugin is very easy to use,mobile friendly,responsive.
Is Your Current Location On Map Safe to Use in 2026?
Generally Safe
Score 85/100Your Current Location On Map has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The 'your-current-location-on-map' plugin v1.1 exhibits a mixed security posture. On the positive side, the plugin demonstrates good practices by utilizing prepared statements for all SQL queries and has no recorded historical vulnerabilities, suggesting a generally secure development history. The static analysis also shows no dangerous functions, file operations, or external HTTP requests, further contributing to a positive security profile. However, several areas raise significant concerns. The lack of capability checks and nonce checks for all entry points is a critical weakness, leaving the plugin vulnerable to unauthorized actions and potential Cross-Site Request Forgery (CSRF) attacks. Furthermore, a low percentage (25%) of properly escaped output indicates a risk of Cross-Site Scripting (XSS) vulnerabilities, where malicious scripts could be injected and executed within the WordPress environment.
While the attack surface is currently small with only one shortcode, the absence of any authorization or security checks on this entry point magnifies the risk. The taint analysis showing zero flows is potentially misleading given the other identified weaknesses; it's more likely that the analysis couldn't fully trace potential vulnerabilities due to the lack of comprehensive checks. The absence of historical vulnerabilities is a strength, but it should not be relied upon to overlook current, identifiable risks. In conclusion, despite a clean vulnerability history and secure SQL handling, the plugin suffers from critical omissions in input validation and authorization, creating notable security risks.
Key Concerns
- Missing capability checks on entry points
- Missing nonce checks on entry points
- Low percentage of properly escaped output
Your Current Location On Map Security Vulnerabilities
Your Current Location On Map Code Analysis
Output Escaping
Your Current Location On Map Attack Surface
Shortcodes 1
WordPress Hooks 1
Maintenance & Trust
Your Current Location On Map Maintenance & Trust
Maintenance Signals
Community Trust
Your Current Location On Map Alternatives
Open User Map
open-user-map
Engage your visitors with an interactive map – let them add markers instantly or create a custom map showcasing your favorite spots.
Mapster WP Maps
mapster-wp-maps
Mapster WP Maps is the smoothest, easiest way to make maps for your site. No API keys required.
WP Mapbox GL JS Maps
wp-mapbox-gl-js
NOTE: This plugin has been deprecated and is no longer supported. Please see our latest plugin, Mapster WP Maps, for a more up-to-date and maintained …
Treweler Map Builder
treweler-map-builder
The Treweler plugin is a multifunction map builder. Its purpose is to help you create an interactive map for your personal or business project.
Mapbox For WP
mapbox-for-wp
Integrate and display Mapbox Maps.
Your Current Location On Map Developer Profile
7 plugins · 970 total installs
How We Detect Your Current Location On Map
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/your-current-location-on-map/leaflet/leaflet.css/wp-content/plugins/your-current-location-on-map/css/map.css/wp-content/plugins/your-current-location-on-map/leaflet/leaflet-src.js/wp-content/plugins/your-current-location-on-map/js/map-bind.js/wp-content/plugins/your-current-location-on-map/leaflet/leaflet-src.js/wp-content/plugins/your-current-location-on-map/js/map-bind.jsHTML / DOM Fingerprints
<div id="clom_map">